Product Security Engineer

2 weeks ago


Bucharest, Bucureşti, Romania Edenred Digital Center Bucharest Full time €60,000 - €120,000 per year

Take a step forward and let Edenred surprise you.

Every day, we deliver innovative solutions to improve the life of millions of people, connecting employees, companies, and merchants all around the world.

We know there are hundred ways for you to grow. With us, you will expand your skills in a multicultural, challenging, and dynamic environment.

Dare to join Edenred and get ready to thrive in a global company that will offer you endless opportunities.

Edenred is all about meritocracy. You come as you are, and you contribute. Indeed, the Edenred Group recognizes, recruits and develops all talents and singularities.

We are committed to preventing all forms of discrimination and to providing all our candidates with equal opportunities regardless of their gender and gender expression, disability, origin, religious belief and sexual orientation or any other criteria.

About EDENRED

Edenred is a pioneer, a tech leader and the everyday companion for people at work across 45 countries.

Our 12,000 employees are committed to making the world of work a better place for all, one that is safer, more efficient and more user-friendly. At Edenred, our passion for customers, respect, imagination, simplicity and entrepreneurial spirit are our values. For anyone who needs to vibe in their professional life, we are the best place for you to work and grow.

The Edenred Digital Center (EDC) in Bucharest, Romania is Edenred Group's new Digital hub for strategic IT projects.

Context/Role

Edenred's Benefits & Engagement business line is searching for a dedicated
Product Security Engineer
.

You will cover multiple Business units (17) distributed in Europe and be responsible for assisting and guaranteeing Security by Design, Network Security and Secure Coding practices in projects. Align security tests and managing vulnerabilities with the Europe Business Units. You will communicate with other departments and business units within the organization, tracking and remediating issues.

Your role

You will be in charge of:

» Integrate and manage vulnerability management tools and scanners and application firewall policies.

» Integrate and roll out security tools (e.g., DLP, IAM/PAM) to enhance application security.

» Collaborate with third-party penetration testing teams, providing necessary support and facilitating the preparation and scoping of tests.

» Support full-stack vulnerability management efforts by coordinating with the Cyber Defense team within B&E Europe.

» Report and follow up on vulnerability remediation plans with stakeholders and development teams within the business units.

» Review and validate secure architecture and processes, ensuring security measures are embedded from the outset (Security by Design).

» Assist in defining and implementing application-layer security monitoring for business platforms.

» Maintain and control regional applications referential.

» Define the run book for each Change implementation and participate on the CAB meeting when required

» Support incident response capabilities, especially for incidents impacting Merchant/User/Clients applications.

» Engage with the Application Security Center of Expertise for support on security initiatives.

» Contribute to incident response efforts for application-layer vulnerabilities as needed, in coordination with Edenred CERT or the Cyber Defense team.

» Stay current on the latest security trends, vulnerabilities, and mitigation techniques.

» Ensure Quality Control and Lessons Learned of Security Actions on the other Security layers.

» Govern and Manage related security procedures, guidelines, diagrams and baselines.

This position requires rigorous coordination skills to cover the full scope composed of several number of assets across multiple countries.

You will be in direct contact with the different CPOs, CTOs and Infra leaders distributed in our Business units.

You will be supported by Group teams which provide expertise on the different cyber security domains.

This is a great opportunity to work with experts from different locations, with different skills, and a shared commitment to deploy & strengthen the Whole group security

This position reports directly to the B&E Europe security leader.

Your Responsibilities

» Partner with product and engineering teams to identify, assess, and mitigate security risks early in the design process

» Perform threat modeling and security design reviews for new and existing products

» Collaborate with development teams to integrate security best practices into the software development lifecycle

» Conduct threat modeling, security assessments, and code reviews to identify vulnerabilities

» Collaborate with DevOps to implement security automation in CI/CD pipelines (SAST, DAST, SCA, etc.)

» Work closely with engineering teams to remediate security issues and implement secure coding practices

» Perform security testing, including static and dynamic analysis

» Develop and deliver security training and awareness programs for developers

» Contribute to incident response related to product or application vulnerabilities

» Stay up to date with the latest security trends, vulnerabilities, and mitigation techniques

Your profile

» Bachelor's degree in Computer Science, Information Security, or a related field, or equivalent practical experience

» 3+ years of experience in application security or product security roles

» Strong understanding of secure coding practices, secure design patterns and common vulnerabilities (e.g., OWASP Top 10)

» Experience performing or facilitating threat modeling and security assessments (STRIDE, PASTA, or equivalent)

» Strong understanding of security monitoring tools, with experience in static and dynamic analysis (DAST, SAST, and EDR technologies)

» Knowledge of cloud security, container security, or DevSecOps practices

» Excellent communication and interpersonal skills, with the ability to convey complex security concepts to technical and non-technical stakeholders

» Fluent English level (mandatory)

» Strong analytical and problem-solving skills and attention to detail

» Proactive, detail-oriented, and solution-driven, with strong organizational skills.

» Experience in matrix and international IT organizations is a plus; previous consulting experience is also appreciated.

Nice to have

» Relevant certifications: CISSP, GCSA, CSSLP, CEH, OSWE, or equivalent.

VIBE WITH US

Joining us means:

» Becoming part of a team that embraced the digitalization challenge and enjoys this transformation every day

» Living our values every day: passions for customers, respect, imagination, simplicity, entrepreneurial spirit.

Because:

» You will get exposure to various global cultures and teams

» You will be working with the newest technologies to build a new platform from scratch

» We offer you a very pleasant working environment, close to Bucharest city center

» We also have for you: meal tickets, holiday vouchers, health subscription, flexible hours, a

remote work policy 2d /week in the office

» Flexible benefits system, on-the-job training & e-learning platforms.

And we do not stop here

OUR COMMITMENT

Edenred is all about meritocracy. You come as you are, and you contribute. Indeed, the Edenred Group recognizes, recruits and develops all talents and singularities. We are committed to preventing all forms of dis crimination and to providing all our candidates with equal opportunities regardless of their gender and gender expression, disability, origin, religious belief and sexual orientation or any other criteria.



  • Bucharest, Bucureşti, Romania Nord Security Full time 40,000 - 80,000 per year

    The world's most advanced VPN, and a whole lot more. If you're a curious problem-solver who carves their own path, join the team behind Threat Protection Pro, the NordLynx protocol, and the fastest VPN on the planet—tools that put privacy, security, and control back in people's hands.Your impact? Helping millions take back control of their online...

  • Resident Engineer

    6 days ago


    Bucharest, Bucureşti, Romania Armis Security Full time €60,000 - €80,000 per year

    Armis, the cyber exposure management & security company, protects the entire attack surface and manages an organization's cyber risk exposure in real time. In a rapidly evolving, perimeter-less world, Armis ensures that organizations continuously see, protect and manage all critical assets - from the ground to the cloud. Armis secures Fortune 100, 200 and...


  • Bucharest, Bucureşti, Romania AdaptiveMobile Security Full time 40,000 - 100,000 per year

    Working as Software Engineer In The Project Engineering TeamYou bring proven experience working in Customer Operations and/or R&D environments, with the ability to design, develop, and support network-related software. Your focus is on ensuring optimal performance, efficient system resource utilization, and maintaining Carrier-Grade stability.Position...

  • Security Engineer

    2 days ago


    Bucharest, Bucureşti, Romania Mindera Full time 30,000 - 60,000 per year

    At Mindera, we craft software with people we love. We're looking for a Security Engineer to join our teamMindera works with a variety of clients across the world to innovate and solve tough technical problems. Our security team enables Mindera to meet a variety of security standards and keep all Minders safe from the bad guys' hands.When you join Mindera we...


  • Bucharest, Bucureşti, Romania Pago App Full time 60,000 - 120,000 per year

    About the companyPago is the smart way to manage your payments: get them all in one app, organized by due date in one screen. #PagoAppWho We AreSay hello to Pago - the go-to app for household payments in Romania We're on a mission to expand our success to Poland, Italy, and beyond over the next five years. Our users' aha moment is seeing all their bills on...


  • Bucharest, Bucureşti, Romania Canonical - Jobs Full time 40,000 - 80,000 per year

    Canonical is a leading provider of open source software and operating systems to the global enterprise and technology markets. Our platform, Ubuntu, is very widely used in breakthrough enterprise initiatives such as public cloud, data science, AI, engineering innovation, and IoT. Our customers include the world's leading public cloud and silicon providers,...


  • Bucharest, Bucureşti, Romania MSD Full time 40,000 - 80,000 per year

    Job DescriptionThe Cyber Defense AI & Automation team are seeking Security Automation Engineer to design and deliver enterprise-scale automation that reduces manual workload, suppresses noise, and accelerates cyber defense outcomes. This role is responsible for building secure, auditable, and guardrail-enforced automation workflows that operate across the...


  • Bucharest, Bucureşti, Romania MSD Romania Full time €40,000 - €80,000 per year

    Job DescriptionThe Cyber Defense AI & Automation team are seeking Security Automation Engineer to design and deliver enterprise-scale automation that reduces manual workload, suppresses noise, and accelerates cyber defense outcomes. This role is responsible for building secure, auditable, and guardrail-enforced automation workflows that operate across the...


  • Bucharest, Bucureşti, Romania MSD Romania Full time €60,000 - €120,000 per year

    Job DescriptionThe Cyber Defense AI & Automation team are seeking Security Automation Engineer to design and deliver enterprise-scale automation that reduces manual workload, suppresses noise, and accelerates cyber defense outcomes. This role is responsible for building secure, auditable, and guardrail-enforced automation workflows that operate across the...


  • Bucharest, Bucureşti, Romania MSD Full time €30,000 - €60,000 per year

    Job DescriptionThe Cyber Defense AI & Automation team are seeking Security Automation Engineer to design and deliver enterprise-scale automation that reduces manual workload, suppresses noise, and accelerates cyber defense outcomes. This role is responsible for building secure, auditable, and guardrail-enforced automation workflows that operate across the...